Skip to content

I - Mission Critical Public

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000210

    Group
  • Prevent per-user installation of ActiveX controls must be enabled.

    This policy setting allows you to prevent the installation of ActiveX controls on a per-user basis. If you enable this policy setting, ActiveX controls cannot be installed on a per-user basis. If y...
    Rule Medium Severity
  • SRG-APP-000427

    Group
  • Prevent ignoring certificate errors option must be enabled.

    This policy setting prevents the user from ignoring Secure Sockets Layer/Transport Layer Security (SSL/TLS) certificate errors that interrupt browsing (such as “expired”, “revoked”, or “name mismat...
    Rule Medium Severity
  • SRG-APP-000278

    Group
  • Turn on SmartScreen Filter scan option for the Internet Zone must be enabled.

    This policy setting controls whether SmartScreen Filter scans pages in this zone for malicious content. If you enable this policy setting, SmartScreen Filter scans pages in this zone for malicious ...
    Rule Medium Severity
  • SRG-APP-000278

    Group
  • Turn on SmartScreen Filter scan option for the Restricted Sites Zone must be enabled.

    This policy setting controls whether SmartScreen Filter scans pages in this zone for malicious content. If you enable this policy setting, SmartScreen Filter scans pages in this zone for malicious ...
    Rule Medium Severity
  • SRG-APP-000210

    Group
  • The Initialize and script ActiveX controls not marked as safe must be disallowed (Intranet Zone).

    ActiveX controls that are not marked safe for scripting should not be executed. Although this is not a complete security measure for a control to be marked safe for scripting, if a control is not m...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules